This is my HiJackthis Log! Please Help Me!!!
HI! I have posted this HiJackthis Log after following the Steps in this Forum.
http://icrontic.com/forum/showthread.php?t=43902
but, i still don´t know how or what to do with the firewall, how to change the actuall.
o.k.
here it is...
C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\ymsgr_tray.exe
C:\Programme\T-DSL Manager\DslMgrSvc.exe
C:\Programme\Windows Desktop Search\WindowsSearchIndexer.exe
C:\Programme\Skype\Plugin Manager\SkypePM.exe
C:\PROGRA~1\INCRED~1\bin\ImApp.exe
C:\Programme\Gemeinsame Dateien\T-COM\HotspotMgr\HotSpotFSvc.exe
C:\Programme\Gemeinsame Dateien\Logishrd\LQCVFX\COCIManager.exe
C:\Programme\MSN Messenger\usnsvc.exe
C:\Programme\MSN Messenger\livecall.exe
C:\Programme\Internet Explorer\IEXPLORE.EXE
C:\Dokumente und Einstellungen\Myra\Desktop\HijackThis\scanner.exe.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://service.t-online.com/xdh/navi/navi.cgp?app=uebersicht&func=index&skinid=b2c&TID=AVOmLuP8TwMcLZwjUF6jRWpf
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://de.intl.acer.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: dsWebAllowBHO Class - {2F85D76C-0569-466F-A488-493E6BD0E955} - C:\Programme\Windows Desktop Search\dsWebAllow.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Programme\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\WINDOWS\system32\eDStoolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar3.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programme\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ntiMUI] c:\Programme\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\WINDOWS\system32\SysMonitor.exe
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 1
O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
O4 - HKLM\..\Run: [AVMWlanClient] C:\Programme\avmwlanstick\wlangui.exe
O4 - HKLM\..\Run: [T-DSL-Manager-Setup] C:\DOKUME~1\Myra\LOKALE~1\Temp\{13D3FE3C-C175-4BA3-9483-5BB01B502F19}\T-DSL Manager.msi
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SDTray] "C:\Programme\Spyware Doctor\SDTrayApp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Programme\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Programme\Gemeinsame Dateien\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Programme\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [avgnt] "C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Programme\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programme\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [swg] C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [updateMgr] c:\Programme\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [Skype] "C:\Programme\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [IncrediMail] C:\Programme\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [Magentic] C:\PROGRA~1\Magentic\bin\Magentic.exe /c
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Programme\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: T-DSL Manager.lnk = C:\Programme\T-DSL Manager\DslMgr.exe
O4 - Global Startup: Acer Empowering Technology.lnk = ?
O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Programme\Acer WLAN 11g USB Dongle\ZDWlan.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Google Updater.lnk = C:\Programme\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: OnlineControl.lnk = C:\Programme\OnlineControl\ocontrol.exe
O4 - Global Startup: Windows-Desktopsuche.lnk = C:\Programme\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Programme\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Programme\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) - http://picasaweb.google.com/s/v/25.22/uploader2.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by120fd.bay120.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/ES-LA/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://myragilz.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) - https://live-seminare.webex.com/client/T25L/webex/ieatgpc.cab
O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments Control) - http://by120fd.bay120.hotmail.msn.com/activex/HMAtchmt.ocx
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Programme\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVM WLAN Connection Service - AVM Berlin - C:\Programme\avmwlanstick\WlanNetService.exe
O23 - Service: GoogleDesktopManager - Google - C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Hotspot Manager (HotSpotFSvc) - T-Systems Enterprise Services GmbH - C:\Programme\Gemeinsame Dateien\T-COM\HotspotMgr\HotSpotFSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: T-Online WLAN Adapter Steuerungsdienst (MZCCntrl) - T-Online International AG, Marmiko IT-Solutions GmbH - C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Programme\Spyware Doctor\svcntaux.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Programme\Spyware Doctor\swdsvc.exe
O23 - Service: T-DSL Manager (TDslMgrService) - T-Systems - C:\Programme\T-DSL Manager\DslMgrSvc.exe
O23 - Service: T-Online DSL-Manager (TODslService) - T-Systems International GmbH - C:\Programme\T-Online\DSL-Manager\TODslSvc.exe
O23 - Service: TSMService - Unknown owner - C:\Programme\T-DSL SpeedManager\tsmsvc.exe (file missing)
--
End of file - 16582 bytes
_________________________________
I allmost got this Report
[FONT="]Thursday, November 22, 2007 6:24:31 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 22/11/2007
Kaspersky Anti-Virus database records: 464087[/FONT]
[FONT="]Scan Settings[/FONT]
[FONT="]Scan using the following antivirus database[/FONT]
[FONT="]extended[/FONT]
[FONT="]Scan Archives[/FONT]
[FONT="]true[/FONT]
[FONT="]Scan Mail Bases[/FONT]
[FONT="]true[/FONT]
[FONT="]Scan Target[/FONT]
[FONT="]My Computer[/FONT]
[FONT="]C:\
D:\
E:\
H:\
I:\
J:\
K:\ [/FONT]
[FONT="]Scan Statistics[/FONT]
[FONT="]Total number of scanned objects[/FONT]
[FONT="]74440[/FONT]
[FONT="]Number of viruses found[/FONT]
[FONT="]2[/FONT]
[FONT="]Number of infected objects[/FONT]
[FONT="]2[/FONT]
[FONT="]Number of suspicious objects[/FONT]
[FONT="]0[/FONT]
[FONT="]Duration of the scan process[/FONT]
[FONT="]02:05:04[/FONT]
[FONT="]Infected Object Name[/FONT]
[FONT="]Virus Name[/FONT]
[FONT="]Last Action[/FONT]
[FONT="]C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft\Network\Downloader\qmgr0.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft\Network\Downloader\qmgr1.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Cookies\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temp\Cookies\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temp\History\History.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temp\Temporary Internet Files\Content.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Verlauf\History.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\NTUSER.DAT [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\ntuser.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Microsoft\MSNLiveFav\LiveFavorites.xml [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\call256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\callmember256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\chat512.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\chatmember256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\chatmsg256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\chatmsg512.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\contactgroup256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\dyncontent\bundle.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\index2.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\profile256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\user1024.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\user16384.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\user256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\user4096.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Cookies\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Desktop\SmitfraudFix\Reboot.exe [/FONT]
[FONT="]Infected: not-a-virus:RiskTool.Win32.Reboot.f [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\ApplicationHistory\Acer.Empowering.Framework.Launcher.exe.7c55249b.ini.inuse [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\ApplicationHistory\SysMonitor.exe.49302a1.ini.inuse [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbc2e.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbdam [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbdao [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbeam [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbeao [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbm [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbu2d.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbvm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbvmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\fii.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\fiih.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\hp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\hpt2i.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\rpm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\rpm1m.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\rpm1mh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\rpmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-black-enchashm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-black-enchashmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-black-urlm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-black-urlmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-malware-domainm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-malware-domainmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-white-domainm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-white-domainmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\GatherLogs\MyIndex\MyIndex.157.Crwl [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\GatherLogs\MyIndex\MyIndex.157.gthr [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\Build\Indexer\CiFiles\0001000B.ci [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\Build\Indexer\CiFiles\CiPT0000.000 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\Build\Indexer\CiFiles\INDEX.000 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\Build\Indexer\NlFiles\CiST0000.000 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\Build\Indexer\NlFiles\DocId.Map [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\MyIndex.chk1.gthr [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\MyIndex.chk2.gthr [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\MyIndex.Ntfy131.gthr [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Properties\MSS.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Properties\MSStmp.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Properties\RSApp.edb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Properties\tmp.edb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Logs\MAPI.txt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Temp\rssgthrsvc\Ntf1.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Temp\rssgthrsvc\Ntf2.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Temp\rssgthrsvc\Perflib_Perfdata_12bc.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\Logs\Dfsr00005.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\pending.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\Working\database_6630_5DB5_587D_D91B\dfsr.db [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\Working\database_6630_5DB5_587D_D91B\fsr.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\Working\database_6630_5DB5_587D_D91B\fsrtmp.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\Working\database_6630_5DB5_587D_D91B\tmp.edb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows Live Contacts\myragilz@hotmail.com\real\members.stg [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows Live Contacts\myragilz@hotmail.com\shadow\members.stg [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DF3FE6.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DF4053.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DFA042.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DFAF8.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DFE92F.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DFED03.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DFF4D2.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Verlauf\History.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Verlauf\History.IE5\MSHist012007112220071123\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\NTUSER.DAT [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\ntuser.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\NetworkService\NTUSER.DAT [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\NetworkService\ntuser.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\AEF.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\AF0.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\AF2.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\AF3.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\MountPointManagerRemoteDatabase [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\tracking.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\_restore{5AD0C2B7-914C-4F07-90B4-1CAC62361721}\RP280\A0073503.dll [/FONT]
[FONT="]Infected: not-a-virus:FraudTool.Win32.UltimateDefender.r [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\_restore{5AD0C2B7-914C-4F07-90B4-1CAC62361721}\RP281\change.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\Debug\PASSWD.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\pfirewall.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\Registration\{02D4B3F1-FD88-11D1-960D-00805FC79235}.{1DFE3E66-7C18-46DE-8886-A127B361AFB8}.crmlog [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\SchedLgU.Txt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\SoftwareDistribution\ReportingEvents.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\Sti_Trace.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\CatRoot2\edb.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\CatRoot2\tmp.edb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\AppEvent.Evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\default [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\default.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\Internet.evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\Media Ce.evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\ODiag.evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\OSession.evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SAM [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SAM.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SecEvent.Evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SECURITY [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SECURITY.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\software [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\software.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SysEvent.Evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\system [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\system.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\h323log.txt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\wiadebug.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\wiaservc.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\WindowsUpdate.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]D:\System Volume Information\_restore{5AD0C2B7-914C-4F07-90B4-1CAC62361721}\RP281\change.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]D:\eDS_PSD_drive.vmdf [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
end
______
Thank You for helping me!
http://icrontic.com/forum/showthread.php?t=43902
but, i still don´t know how or what to do with the firewall, how to change the actuall.
o.k.
here it is...
C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\ymsgr_tray.exe
C:\Programme\T-DSL Manager\DslMgrSvc.exe
C:\Programme\Windows Desktop Search\WindowsSearchIndexer.exe
C:\Programme\Skype\Plugin Manager\SkypePM.exe
C:\PROGRA~1\INCRED~1\bin\ImApp.exe
C:\Programme\Gemeinsame Dateien\T-COM\HotspotMgr\HotSpotFSvc.exe
C:\Programme\Gemeinsame Dateien\Logishrd\LQCVFX\COCIManager.exe
C:\Programme\MSN Messenger\usnsvc.exe
C:\Programme\MSN Messenger\livecall.exe
C:\Programme\Internet Explorer\IEXPLORE.EXE
C:\Dokumente und Einstellungen\Myra\Desktop\HijackThis\scanner.exe.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://service.t-online.com/xdh/navi/navi.cgp?app=uebersicht&func=index&skinid=b2c&TID=AVOmLuP8TwMcLZwjUF6jRWpf
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://de.intl.acer.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: dsWebAllowBHO Class - {2F85D76C-0569-466F-A488-493E6BD0E955} - C:\Programme\Windows Desktop Search\dsWebAllow.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Programme\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\WINDOWS\system32\eDStoolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar3.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programme\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ntiMUI] c:\Programme\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\WINDOWS\system32\SysMonitor.exe
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 1
O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
O4 - HKLM\..\Run: [AVMWlanClient] C:\Programme\avmwlanstick\wlangui.exe
O4 - HKLM\..\Run: [T-DSL-Manager-Setup] C:\DOKUME~1\Myra\LOKALE~1\Temp\{13D3FE3C-C175-4BA3-9483-5BB01B502F19}\T-DSL Manager.msi
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SDTray] "C:\Programme\Spyware Doctor\SDTrayApp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Programme\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Programme\Gemeinsame Dateien\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Programme\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [avgnt] "C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Programme\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programme\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [swg] C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [updateMgr] c:\Programme\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [Skype] "C:\Programme\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [IncrediMail] C:\Programme\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [Magentic] C:\PROGRA~1\Magentic\bin\Magentic.exe /c
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Programme\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: T-DSL Manager.lnk = C:\Programme\T-DSL Manager\DslMgr.exe
O4 - Global Startup: Acer Empowering Technology.lnk = ?
O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Programme\Acer WLAN 11g USB Dongle\ZDWlan.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Google Updater.lnk = C:\Programme\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: OnlineControl.lnk = C:\Programme\OnlineControl\ocontrol.exe
O4 - Global Startup: Windows-Desktopsuche.lnk = C:\Programme\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Programme\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Programme\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) - http://picasaweb.google.com/s/v/25.22/uploader2.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by120fd.bay120.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/ES-LA/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://myragilz.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) - https://live-seminare.webex.com/client/T25L/webex/ieatgpc.cab
O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments Control) - http://by120fd.bay120.hotmail.msn.com/activex/HMAtchmt.ocx
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Programme\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVM WLAN Connection Service - AVM Berlin - C:\Programme\avmwlanstick\WlanNetService.exe
O23 - Service: GoogleDesktopManager - Google - C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Hotspot Manager (HotSpotFSvc) - T-Systems Enterprise Services GmbH - C:\Programme\Gemeinsame Dateien\T-COM\HotspotMgr\HotSpotFSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: T-Online WLAN Adapter Steuerungsdienst (MZCCntrl) - T-Online International AG, Marmiko IT-Solutions GmbH - C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Programme\Spyware Doctor\svcntaux.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Programme\Spyware Doctor\swdsvc.exe
O23 - Service: T-DSL Manager (TDslMgrService) - T-Systems - C:\Programme\T-DSL Manager\DslMgrSvc.exe
O23 - Service: T-Online DSL-Manager (TODslService) - T-Systems International GmbH - C:\Programme\T-Online\DSL-Manager\TODslSvc.exe
O23 - Service: TSMService - Unknown owner - C:\Programme\T-DSL SpeedManager\tsmsvc.exe (file missing)
--
End of file - 16582 bytes
_________________________________
I allmost got this Report
[FONT="]KASPERSKY ONLINE SCANNER REPORT[/FONT]
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 22/11/2007
Kaspersky Anti-Virus database records: 464087[/FONT]
[FONT="]Scan Settings[/FONT]
[FONT="]Scan using the following antivirus database[/FONT]
[FONT="]extended[/FONT]
[FONT="]Scan Archives[/FONT]
[FONT="]true[/FONT]
[FONT="]Scan Mail Bases[/FONT]
[FONT="]true[/FONT]
[FONT="]Scan Target[/FONT]
[FONT="]My Computer[/FONT]
[FONT="]C:\
D:\
E:\
H:\
I:\
J:\
K:\ [/FONT]
[FONT="]Scan Statistics[/FONT]
[FONT="]Total number of scanned objects[/FONT]
[FONT="]74440[/FONT]
[FONT="]Number of viruses found[/FONT]
[FONT="]2[/FONT]
[FONT="]Number of infected objects[/FONT]
[FONT="]2[/FONT]
[FONT="]Number of suspicious objects[/FONT]
[FONT="]0[/FONT]
[FONT="]Duration of the scan process[/FONT]
[FONT="]02:05:04[/FONT]
[FONT="]Infected Object Name[/FONT]
[FONT="]Virus Name[/FONT]
[FONT="]Last Action[/FONT]
[FONT="]C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft\Network\Downloader\qmgr0.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft\Network\Downloader\qmgr1.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Cookies\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temp\Cookies\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temp\History\History.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temp\Temporary Internet Files\Content.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Verlauf\History.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\NTUSER.DAT [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\LocalService\ntuser.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Microsoft\MSNLiveFav\LiveFavorites.xml [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\call256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\callmember256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\chat512.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\chatmember256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\chatmsg256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\chatmsg512.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\contactgroup256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\dyncontent\bundle.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\index2.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\profile256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\user1024.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\user16384.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\user256.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Anwendungsdaten\Skype\myragilz\user4096.dbb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Cookies\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Desktop\SmitfraudFix\Reboot.exe [/FONT]
[FONT="]Infected: not-a-virus:RiskTool.Win32.Reboot.f [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\ApplicationHistory\Acer.Empowering.Framework.Launcher.exe.7c55249b.ini.inuse [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\ApplicationHistory\SysMonitor.exe.49302a1.ini.inuse [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbc2e.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbdam [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbdao [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbeam [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbeao [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbm [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbu2d.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbvm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\dbvmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\fii.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\fiih.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\hp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\hpt2i.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\rpm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\rpm1m.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\rpm1mh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\rpmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-black-enchashm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-black-enchashmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-black-urlm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-black-urlmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-malware-domainm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-malware-domainmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-white-domainm.cf1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Google\Google Desktop\9b2f9683e9c5\safeweb\goog-white-domainmh.ht1 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\GatherLogs\MyIndex\MyIndex.157.Crwl [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\GatherLogs\MyIndex\MyIndex.157.gthr [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\Build\Indexer\CiFiles\0001000B.ci [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\Build\Indexer\CiFiles\CiPT0000.000 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\Build\Indexer\CiFiles\INDEX.000 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\Build\Indexer\NlFiles\CiST0000.000 [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\Build\Indexer\NlFiles\DocId.Map [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\MyIndex.chk1.gthr [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\MyIndex.chk2.gthr [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Projects\MyIndex\MyIndex.Ntfy131.gthr [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Properties\MSS.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Properties\MSStmp.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Properties\RSApp.edb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Applications\RSApp\Properties\tmp.edb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Logs\MAPI.txt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Temp\rssgthrsvc\Ntf1.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Temp\rssgthrsvc\Ntf2.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Desktop Search\Temp\rssgthrsvc\Perflib_Perfdata_12bc.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\Logs\Dfsr00005.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\pending.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\Working\database_6630_5DB5_587D_D91B\dfsr.db [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\Working\database_6630_5DB5_587D_D91B\fsr.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\Working\database_6630_5DB5_587D_D91B\fsrtmp.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Messenger\myragilz@hotmail.com\SharingMetadata\Working\database_6630_5DB5_587D_D91B\tmp.edb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows Live Contacts\myragilz@hotmail.com\real\members.stg [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows Live Contacts\myragilz@hotmail.com\shadow\members.stg [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DF3FE6.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DF4053.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DFA042.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DFAF8.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DFE92F.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DFED03.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temp\~DFF4D2.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Verlauf\History.IE5\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\Lokale Einstellungen\Verlauf\History.IE5\MSHist012007112220071123\index.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\NTUSER.DAT [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\Myra\ntuser.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\NetworkService\NTUSER.DAT [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\Dokumente und Einstellungen\NetworkService\ntuser.dat.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\AEF.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\AF0.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\AF2.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\AF3.tmp [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\MountPointManagerRemoteDatabase [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\tracking.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\_restore{5AD0C2B7-914C-4F07-90B4-1CAC62361721}\RP280\A0073503.dll [/FONT]
[FONT="]Infected: not-a-virus:FraudTool.Win32.UltimateDefender.r [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\System Volume Information\_restore{5AD0C2B7-914C-4F07-90B4-1CAC62361721}\RP281\change.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\Debug\PASSWD.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\pfirewall.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\Registration\{02D4B3F1-FD88-11D1-960D-00805FC79235}.{1DFE3E66-7C18-46DE-8886-A127B361AFB8}.crmlog [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\SchedLgU.Txt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\SoftwareDistribution\ReportingEvents.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\Sti_Trace.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\CatRoot2\edb.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\CatRoot2\tmp.edb [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\AppEvent.Evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\default [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\default.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\Internet.evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\Media Ce.evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\ODiag.evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\OSession.evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SAM [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SAM.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SecEvent.Evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SECURITY [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SECURITY.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\software [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\software.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\SysEvent.Evt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\system [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\config\system.LOG [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\h323log.txt [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\wiadebug.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\wiaservc.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]C:\WINDOWS\WindowsUpdate.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]D:\System Volume Information\_restore{5AD0C2B7-914C-4F07-90B4-1CAC62361721}\RP281\change.log [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
[FONT="]D:\eDS_PSD_drive.vmdf [/FONT]
[FONT="]Object is locked [/FONT]
[FONT="]skipped [/FONT]
end
______
Thank You for helping me!
0
Comments
Sorry for the delay. If you still require help, please post a new HijackThis log.
This is my fresh HiJackThis
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:15:24 p.m., on 05/12/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16544)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Gemeinsame Dateien\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Programme\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Programme\avmwlanstick\WlanNetService.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe
c:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe
C:\Programme\Gemeinsame Dateien\LogiShrd\LVCOMSER\LVComSer.exe
C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe
C:\Programme\Spyware Doctor\svcntaux.exe
C:\Programme\Spyware Doctor\swdsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\ehome\mcrdsvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Programme\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\SysMonitor.exe
C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
C:\Programme\avmwlanstick\wlangui.exe
C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe
C:\Programme\Spyware Doctor\SDTrayApp.exe
C:\Programme\QuickTime\qttask.exe
C:\Programme\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Programme\Gemeinsame Dateien\LogiShrd\LComMgr\Communications_Helper.exe
C:\Programme\Logitech\QuickCam\Quickcam.exe
C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\MSN Messenger\MsnMsgr.Exe
C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe
C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
C:\Programme\eMule\emule.exe
C:\Acer\Empowering Technology\Acer.Empowering.Framework.Launcher.exe
C:\Programme\Acer WLAN 11g USB Dongle\ZDWlan.exe
C:\Programme\Google\Google Updater\GoogleUpdater.exe
C:\Programme\OnlineControl\ocontrol.exe
C:\Programme\Windows Desktop Search\WindowsSearch.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\ymsgr_tray.exe
C:\Programme\Windows Desktop Search\WindowsSearchIndexer.exe
C:\PROGRA~1\INCRED~1\bin\ImApp.exe
C:\Programme\Gemeinsame Dateien\Logishrd\LQCVFX\COCIManager.exe
C:\Programme\MSN Messenger\usnsvc.exe
C:\Programme\MSN Messenger\livecall.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Programme\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe
C:\Dokumente und Einstellungen\Myra\Desktop\HijackThis\scanner.exe.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://service.t-online.com/xdh/navi/navi.cgp?app=uebersicht&func=index&skinid=b2c&TID=AVOmLuP8TwMcLZwjUF6jRWpf
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://de.intl.acer.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.de/0SEDEDE/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: dsWebAllowBHO Class - {2F85D76C-0569-466F-A488-493E6BD0E955} - C:\Programme\Windows Desktop Search\dsWebAllow.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Programme\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\WINDOWS\system32\eDStoolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar3.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programme\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programme\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ntiMUI] c:\Programme\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\WINDOWS\system32\SysMonitor.exe
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 1
O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
O4 - HKLM\..\Run: [AVMWlanClient] C:\Programme\avmwlanstick\wlangui.exe
O4 - HKLM\..\Run: [T-DSL-Manager-Setup] C:\DOKUME~1\Myra\LOKALE~1\Temp\{13D3FE3C-C175-4BA3-9483-5BB01B502F19}\T-DSL Manager.msi
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SDTray] "C:\Programme\Spyware Doctor\SDTrayApp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Programme\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Programme\Gemeinsame Dateien\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Programme\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [avgnt] "C:\Programme\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Programme\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programme\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [swg] C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [updateMgr] c:\Programme\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [Skype] "C:\Programme\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [IncrediMail] C:\Programme\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [Magentic] C:\PROGRA~1\Magentic\bin\Magentic.exe /c
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Programme\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Acer Empowering Technology.lnk = ?
O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Programme\Acer WLAN 11g USB Dongle\ZDWlan.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Google Updater.lnk = C:\Programme\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: OnlineControl.lnk = C:\Programme\OnlineControl\ocontrol.exe
O4 - Global Startup: Windows-Desktopsuche.lnk = C:\Programme\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Programme\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Programme\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) - http://picasaweb.google.com/s/v/25.22/uploader2.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/ES-LA/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://myragilz.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) - https://live-seminare.webex.com/client/T25L/webex/ieatgpc.cab
O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments Control) - http://by120fd.bay120.hotmail.msn.com/activex/HMAtchmt.ocx
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: AntiVir PersonalEdition Classic Planer (AntiVirScheduler) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Programme\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVM WLAN Connection Service - AVM Berlin - C:\Programme\avmwlanstick\WlanNetService.exe
O23 - Service: GoogleDesktopManager - Google - C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Hotspot Manager (HotSpotFSvc) - Unknown owner - C:\Programme\Gemeinsame Dateien\T-COM\HotspotMgr\HotSpotFSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Programme\Gemeinsame Dateien\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: T-Online WLAN Adapter Steuerungsdienst (MZCCntrl) - T-Online International AG, Marmiko IT-Solutions GmbH - C:\Programme\Gemeinsame Dateien\Marmiko Shared\MZCCntrl.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Programme\Spyware Doctor\svcntaux.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Programme\Spyware Doctor\swdsvc.exe
O23 - Service: T-Online DSL-Manager (TODslService) - T-Systems International GmbH - C:\Programme\T-Online\DSL-Manager\TODslSvc.exe
O23 - Service: TSMService - Unknown owner - C:\Programme\T-DSL SpeedManager\tsmsvc.exe (file missing)
--
End of file - 16235 bytes
.........
bye
Myra
I don't see anything malicious in your HijackThis log. What problems are you having?
Also, I need to see another log from HijackThis.
Great!
At the beginning, I got this results after scanning:
RougueAntiSpyware.Ultimate_Cleaner
Adware.IEPlugin
Worm.Autorun.k
and it seemed very harmfull. The PC had standly jamed and was tooooo slow. And I panik! :sad2:,
I guess I actually don´t have any trouble because I followed every step on this tread: http://icrontic.com/forum/showthread.php?t=43902
before sending my last HJT-report. It is... wonderfull, very clear instructions!
But at the end I couldn´t be sure if all of it was enough, or if I did it correctly or if even still had something
Now PC works relative o.k. because it still jams at odd times.
I thank You so much because of the time you take for reading my report.
I still have a question left about the firewall. I´m not sure if I got one out of Microsoft´s.
Now I will follow your new instructions.
O.K. Hier is the UNINSTALL LIST form HiJackThis,
Acer eDataSecurity Management
Acer eDataSecurity Management 2.0.3077
Acer Empowering Technology
Acer ePerformance Management
Acer WLAN 11g USB Dongle
Ad-Aware SE Personal
Ad-Aware SE Personal
Adobe Flash Player ActiveX
Adobe Reader 7.0.9
Adobe Shockwave Player
ArcSoft PhotoStudio 5.5
ATI Display Driver
AVG Anti-Spyware 7.5
Avira AntiVir PersonalEdition Classic
AVM FRITZ!WLAN
Browsen mit Registerkarten (Windows Live Toolbar)
Canon MP Navigator 3.0
Canon MP160
Canon Utilities Easy-PhotoPrint
CleanUp!
commercial
Der Kleine Eisbär 1
Easy-WebPrint
eMule
Feederkennung (Windows Live Toolbar)
GemMaster Mystic
Google Desktop
Google Earth
Google Toolbar for Firefox
Google Toolbar for Internet Explorer
Google Updater
High Definition Audio Driver Package - KB888111
HijackThis 2.0.2
Hot Potatoes v 6.2.1.2
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 10 (KB903157)
Hotfix for Windows XP (KB915865)
Hotfix for Windows XP (KB926239)
Hotfix für Windows Media Player 11 (KB939683)
Hotfix für Windows XP (KB888795)
Hotfix für Windows XP (KB891593)
Hotfix für Windows XP (KB893357)
Hotfix für Windows XP (KB896256)
Hotfix für Windows XP (KB898444)
Hotfix für Windows XP (KB899337)
Hotfix für Windows XP (KB899510)
Hotfix für Windows XP (KB902841)
Hotfix für Windows XP (KB906569)
Hotfix für Windows XP (KB914440)
Hotfix für Windows XP (KB935448)
IncrediMail Xe
InterActual Player
J2SE Runtime Environment 5.0 Update 10
J2SE Runtime Environment 5.0 Update 6
Java(TM) 6 Update 2
Java(TM) 6 Update 3
Java(TM) SE Runtime Environment 6 Update 1
Kaspersky Online Scanner
Logitech Audio Echo Cancellation Component
Logitech Print Service
Logitech QuickCam
Logitech Video Enumerator
Logitech® Camera-Treiber
LogMeIn
MailOut
Microsoft .NET Framework 1.0 Hotfix (KB887998)
Microsoft .NET Framework 1.0 Hotfix (KB930494)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 German Language Pack
Microsoft .NET Framework 1.1 Hotfix (KB928366)
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office Excel MUI (German) 2007
Microsoft Office Home and Student 2007
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (German) 2007
Microsoft Office PowerPoint MUI (German) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (German) 2007
Microsoft Office Proof (Italian) 2007
Microsoft Office Proofing (German) 2007
Microsoft Office Shared MUI (German) 2007
Microsoft Office Word MUI (German) 2007
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual J# .NET Redistributable Package 1.1
Microsoft Works
Mozilla Firefox (2.0.0.11)
MSN
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MVision
Norton™ Security Scan
NTI Backup NOW! 4
NTI CD & DVD-Maker
NVIDIA Drivers
OCA Client history tool install
OneCare Advisor (Windows Live Toolbar)
OnlineControl 1.2
Panda ActiveScan
Picasa 2
Popupblocker (Windows Live Toolbar)
PowerDVD
QuickTime
Reader Rabbit's Preschool
Realtek High Definition Audio Driver
ScanSoft OmniPage SE 4.0
Security Update for CAPICOM (KB931906)
Security Update for CAPICOM (KB931906)
Security Update for Excel 2007 (KB936509)
Security Update for Office 2007 (KB934062)
Security Update for Office 2007 (KB936514)
Security Update for the 2007 Microsoft Office System (KB936960)
Sicherheitsupdate für Step by Step Interactive Training (KB898458)
Sicherheitsupdate für Windows Internet Explorer 7 (KB928090)
Sicherheitsupdate für Windows Internet Explorer 7 (KB931768)
Sicherheitsupdate für Windows Internet Explorer 7 (KB933566)
Sicherheitsupdate für Windows Internet Explorer 7 (KB937143)
Sicherheitsupdate für Windows Internet Explorer 7 (KB938127)
Sicherheitsupdate für Windows Internet Explorer 7 (KB939653)
Sicherheitsupdate für Windows Media Player (KB911564)
Sicherheitsupdate für Windows Media Player 10 (KB911565)
Sicherheitsupdate für Windows Media Player 10 (KB917734)
Sicherheitsupdate für Windows Media Player 11 (KB936782)
Sicherheitsupdate für Windows Media Player 6.4 (KB925398)
Sicherheitsupdate für Windows XP (KB883939)
Sicherheitsupdate für Windows XP (KB890046)
Sicherheitsupdate für Windows XP (KB893756)
Sicherheitsupdate für Windows XP (KB896358)
Sicherheitsupdate für Windows XP (KB896422)
Sicherheitsupdate für Windows XP (KB896423)
Sicherheitsupdate für Windows XP (KB896424)
Sicherheitsupdate für Windows XP (KB896428)
Sicherheitsupdate für Windows XP (KB899587)
Sicherheitsupdate für Windows XP (KB899588)
Sicherheitsupdate für Windows XP (KB899589)
Sicherheitsupdate für Windows XP (KB899591)
Sicherheitsupdate für Windows XP (KB900725)
Sicherheitsupdate für Windows XP (KB901017)
Sicherheitsupdate für Windows XP (KB901190)
Sicherheitsupdate für Windows XP (KB901214)
Sicherheitsupdate für Windows XP (KB902400)
Sicherheitsupdate für Windows XP (KB903235)
Sicherheitsupdate für Windows XP (KB904706)
Sicherheitsupdate für Windows XP (KB905414)
Sicherheitsupdate für Windows XP (KB905749)
Sicherheitsupdate für Windows XP (KB905915)
Sicherheitsupdate für Windows XP (KB908519)
Sicherheitsupdate für Windows XP (KB908531)
Sicherheitsupdate für Windows XP (KB911562)
Sicherheitsupdate für Windows XP (KB911567)
Sicherheitsupdate für Windows XP (KB911927)
Sicherheitsupdate für Windows XP (KB912812)
Sicherheitsupdate für Windows XP (KB912919)
Sicherheitsupdate für Windows XP (KB913433)
Sicherheitsupdate für Windows XP (KB913446)
Sicherheitsupdate für Windows XP (KB913580)
Sicherheitsupdate für Windows XP (KB914388)
Sicherheitsupdate für Windows XP (KB914389)
Sicherheitsupdate für Windows XP (KB917344)
Sicherheitsupdate für Windows XP (KB917422)
Sicherheitsupdate für Windows XP (KB917953)
Sicherheitsupdate für Windows XP (KB918118)
Sicherheitsupdate für Windows XP (KB918439)
Sicherheitsupdate für Windows XP (KB919007)
Sicherheitsupdate für Windows XP (KB920213)
Sicherheitsupdate für Windows XP (KB920670)
Sicherheitsupdate für Windows XP (KB920683)
Sicherheitsupdate für Windows XP (KB920685)
Sicherheitsupdate für Windows XP (KB921398)
Sicherheitsupdate für Windows XP (KB921503)
Sicherheitsupdate für Windows XP (KB922616)
Sicherheitsupdate für Windows XP (KB922819)
Sicherheitsupdate für Windows XP (KB923191)
Sicherheitsupdate für Windows XP (KB923414)
Sicherheitsupdate für Windows XP (KB923689)
Sicherheitsupdate für Windows XP (KB923694)
Sicherheitsupdate für Windows XP (KB923980)
Sicherheitsupdate für Windows XP (KB924191)
Sicherheitsupdate für Windows XP (KB924270)
Sicherheitsupdate für Windows XP (KB924496)
Sicherheitsupdate für Windows XP (KB924667)
Sicherheitsupdate für Windows XP (KB925454)
Sicherheitsupdate für Windows XP (KB925486)
Sicherheitsupdate für Windows XP (KB925902)
Sicherheitsupdate für Windows XP (KB926255)
Sicherheitsupdate für Windows XP (KB926436)
Sicherheitsupdate für Windows XP (KB927779)
Sicherheitsupdate für Windows XP (KB927802)
Sicherheitsupdate für Windows XP (KB928255)
Sicherheitsupdate für Windows XP (KB928843)
Sicherheitsupdate für Windows XP (KB929123)
Sicherheitsupdate für Windows XP (KB930178)
Sicherheitsupdate für Windows XP (KB931261)
Sicherheitsupdate für Windows XP (KB931784)
Sicherheitsupdate für Windows XP (KB932168)
Sicherheitsupdate für Windows XP (KB933729)
Sicherheitsupdate für Windows XP (KB935839)
Sicherheitsupdate für Windows XP (KB935840)
Sicherheitsupdate für Windows XP (KB936021)
Sicherheitsupdate für Windows XP (KB938829)
Sicherheitsupdate für Windows XP (KB943460)
Skype™ 3.5
Smart Menus (Windows Live Toolbar)
Sonic Encoders
Spybot - Search & Destroy 1.4
Spyware Doctor 5.0
T-DSL SpeedManager
T-Online 6.0
T-Online DSL-Manager
T-Online Fotoservice
T-Online Router Web-IF Management
T-Online WLAN-Access Finder
Update for Office 2007 (KB932080)
Update for Office 2007 (KB934391)
Update for Office 2007 (KB934393)
Update for Word 2007 (KB934173)
Update für Windows Media Player 10 (KB910393)
Update für Windows Media Player 10 (KB913800)
Update für Windows Media Player 10 (KB926251)
Update für Windows XP (KB894391)
Update für Windows XP (KB896727)
Update für Windows XP (KB898461)
Update für Windows XP (KB900485)
Update für Windows XP (KB904942)
Update für Windows XP (KB910437)
Update für Windows XP (KB911280)
Update für Windows XP (KB912945)
Update für Windows XP (KB916595)
Update für Windows XP (KB920872)
Update für Windows XP (KB922582)
Update für Windows XP (KB927891)
Update für Windows XP (KB929338)
Update für Windows XP (KB930916)
Update für Windows XP (KB931836)
Update für Windows XP (KB933360)
Update für Windows XP (KB938828)
Update Rollup 2 für Windows XP Media Center Edition 2005
WebEx
Windows Installer 3.1 (KB893803)
Windows Internet Explorer 7
Windows Live Favorites für Windows Live Toolbar
Windows Live Messenger
Windows Live OneCare safety scanner
Windows Live Outlook-Toolbar (Windows Live Toolbar)
Windows Live Sign-in Assistant
Windows Live Toolbar
Windows Live Toolbar
Windows Live Toolbar-Erweiterung (Windows Live Toolbar)
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
Windows XP Media Center Edition 2005 KB908246
Windows XP Media Center Edition 2005 KB925766
Windows XP-Hotfix - KB867282
Windows XP-Hotfix - KB873333
Windows XP-Hotfix - KB873339
Windows XP-Hotfix - KB885250
Windows XP-Hotfix - KB885835
Windows XP-Hotfix - KB885836
Windows XP-Hotfix - KB886185
Windows XP-Hotfix - KB887472
Windows XP-Hotfix - KB888113
Windows XP-Hotfix - KB888239
Windows XP-Hotfix - KB888302
Windows XP-Hotfix - KB890047
Windows XP-Hotfix - KB890175
Windows XP-Hotfix - KB890859
Windows XP-Hotfix - KB890923
Windows XP-Hotfix - KB891781
Windows XP-Hotfix - KB893086
Windows XP-Hotfix - KB895961
Windows-Desktopsuche
Windows-Treiberpaket - Advanced Micro Devices (AmdK8) Processor (05/27/2006 1.3.2.0)
Windows-Treiberpaket - AMD System (04/06/2006 1.0.1.0)
WinRAR Archivierer
Yahoo! Extras
Yahoo! Install Manager
Yahoo! Internet Mail
Yahoo! Messenger
Yahoo! Toolbar mit Pop-Up-Blocker
Click Start > Run > type in appwiz.cpl and hit enter. From the list uninstall the following, if present:
J2SE Runtime Environment 5.0 Update 10
J2SE Runtime Environment 5.0 Update 6
Java(TM) 6 Update 2
Java(TM) SE Runtime Environment 6 Update 1
Lets check. Click Start > Control Panel > Windows Firewall. You can check if it is On or Off.
You can also download one of the following Firewalls - They are Free!
Comodo
Zone Alarm
Sunbelt Kerio PF
Outpost Firewall
If you download one of the free Firewalls, then turn off Windows Firewall. Only have one Firewall running.
E-mule is a P2P program like Limewire where you can download programs. You can get infected by using this program. I suggest you uninstall it from your computer.
Thank You Again.
I still have
Java (TM)6 update 3
schould I uninstall it too?
Let me know if I can close this thread.
bye
This topic is now closed. If you wish it reopened, please send a Private Message to Trogan with a link to your thread.
If you are not the user who started this thread, you must start your own Thread instead (grin)